Oval Definition:
oval:org.mitre.oval:def:8230
Revision Date
:
2014-06-23
Version
:
18
Title
:
DSA-1933 cups -- missing input sanitising
Description
:
Aaron Siegel discovered that the web interface of cups, the Common UNIX Printing System, is prone to cross-site scripting attacks.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2009-2820
DSA-1933
Platform(s)
:
Debian GNU/Linux 4.0
Debian GNU/Linux 5.0
Product(s)
:
cups
Definition Synopsis
Release section
Debian GNU/Linux 5.0 is installed
AND
Architecture section
Architecture independent section
Installed architecture is all
AND
Packages section
cupsys-bsd is earlier than 1.3.8-1+lenny7
OR
cupsys-client is earlier than 1.3.8-1+lenny7
OR
libcupsys2-dev is earlier than 1.3.8-1+lenny7
OR
cupsys-common is earlier than 1.3.8-1+lenny7
OR
cups-common is earlier than 1.3.8-1+lenny7
OR
cupsys-dbg is earlier than 1.3.8-1+lenny7
OR
cupsys is earlier than 1.3.8-1+lenny7
OR
libcupsys2 is earlier than 1.3.8-1+lenny7
OR
Architecture dependent section
Supported architectures section
Installed architecture is s390
OR
Installed architecture is amd64
OR
Installed architecture is sparc
OR
Installed architecture is arm
OR
Installed architecture is i386
OR
Installed architecture is armel
OR
Installed architecture is mips
OR
Installed architecture is ia64
OR
Installed architecture is alpha
OR
Installed architecture is powerpc
OR
Installed architecture is mipsel
OR
Installed architecture is hppa
AND
Packages section
libcups2-dev is earlier than 1.3.8-1+lenny7
OR
cups-bsd is earlier than 1.3.8-1+lenny7
OR
libcupsimage2-dev is earlier than 1.3.8-1+lenny7
OR
libcupsimage2 is earlier than 1.3.8-1+lenny7
OR
cups-client is earlier than 1.3.8-1+lenny7
OR
libcups2 is earlier than 1.3.8-1+lenny7
OR
cups-dbg is earlier than 1.3.8-1+lenny7
OR
cups is earlier than 1.3.8-1+lenny7
OR
Release section
Debian GNU/Linux 4.0 is installed.
AND
Architecture section
Architecture independent section
Installed architecture is all
AND
Packages section
libcupsys2-gnutls10 is earlier than 1.2.7-4+etch9
OR
cupsys-common is earlier than 1.2.7-4+etch9
OR
cupsys-bsd is earlier than 1.2.7-4+etch9
OR
cupsys-client is earlier than 1.2.7-4+etch9
OR
libcupsys2-dev is earlier than 1.2.7-4+etch9
OR
libcupsimage2-dev is earlier than 1.2.7-4+etch9
OR
libcupsimage2 is earlier than 1.2.7-4+etch9
OR
cupsys-dbg is earlier than 1.2.7-4+etch9
OR
cupsys is earlier than 1.2.7-4+etch9
OR
libcupsys2 is earlier than 1.2.7-4+etch9
BACK